LINUX

New Perfctl Malware targets Linux servers in cryptomining campaignNew Perfctl Malware targets Linux servers in cryptomining campaign

New Perfctl Malware targets Linux servers in cryptomining campaign

perfctl malware targets misconfigured Linux servers to deploy cryptocurrency miners and proxyjacking software in an ongoing campaign. Aqua Nautilus researchers…

8 months ago
Linux malware sedexp uses udev rules for persistence and evasionLinux malware sedexp uses udev rules for persistence and evasion

Linux malware sedexp uses udev rules for persistence and evasion

Researchers spotted a new stealthy Linux malware named sedexp that uses Linux udev rules to achieve persistence and evade detection.…

9 months ago
A new Linux version of TargetCompany ransomware targets VMware ESXi environmentsA new Linux version of TargetCompany ransomware targets VMware ESXi environments

A new Linux version of TargetCompany ransomware targets VMware ESXi environments

A new Linux variant of the TargetCompany ransomware family targets VMware ESXi environments using a custom shell script. A new variant…

12 months ago
CISA adds Check Point Quantum Security Gateways and Linux Kernel flaws to its Known Exploited Vulnerabilities catalogCISA adds Check Point Quantum Security Gateways and Linux Kernel flaws to its Known Exploited Vulnerabilities catalog

CISA adds Check Point Quantum Security Gateways and Linux Kernel flaws to its Known Exploited Vulnerabilities catalog

CISA adds Check Point Quantum Security Gateways and Linux Kernel flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity…

1 year ago
North Korea-linked Kimsuky used a new Linux backdoor in recent attacksNorth Korea-linked Kimsuky used a new Linux backdoor in recent attacks

North Korea-linked Kimsuky used a new Linux backdoor in recent attacks

Symantec warns of a new Linux backdoor used by the North Korea-linked Kimsuky APT in a recent campaign against organizations…

1 year ago
Linux variant of Cerber ransomware targets Atlassian serversLinux variant of Cerber ransomware targets Atlassian servers

Linux variant of Cerber ransomware targets Atlassian servers

Threat actors are exploiting the CVE-2023-22518 flaw in Atlassian servers to deploy a Linux variant of Cerber (aka C3RB3R) ransomware. At…

1 year ago
DinodasRAT Linux variant targets users worldwideDinodasRAT Linux variant targets users worldwide

DinodasRAT Linux variant targets users worldwide

A Linux variant of the DinodasRAT backdoor used in attacks against users in China, Taiwan, Turkey, and Uzbekistan, researchers from Kaspersky warn. Researchers…

1 year ago
Expert found a backdoor in XZ tools used many Linux distributionsExpert found a backdoor in XZ tools used many Linux distributions

Expert found a backdoor in XZ tools used many Linux distributions

Red Hat warns of a backdoor in XZ Utils data compression tools and libraries in Fedora development and experimental versions. Red…

1 year ago
New Linux variant of BIFROSE RAT uses deceptive domain strategiesNew Linux variant of BIFROSE RAT uses deceptive domain strategies

New Linux variant of BIFROSE RAT uses deceptive domain strategies

A new Linux variant of the remote access trojan (RAT) BIFROSE (aka Bifrost) uses a deceptive domain mimicking VMware. Palo…

1 year ago
Abusing the Ubuntu ‘command-not-found’ utility to install malicious packagesAbusing the Ubuntu ‘command-not-found’ utility to install malicious packages

Abusing the Ubuntu ‘command-not-found’ utility to install malicious packages

Researchers reported that attackers can exploit the 'command-not-found' utility to trick users into installing rogue packages on Ubuntu systems. Cybersecurity…

1 year ago